Junglewise Threat Intelligence

PYSEC-2022-43093 - The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code exe

Severity: low · CVSS 3.1 · Published 2022-11-07

Technologies: d8s-xml (PyPI). Vendors: PyPI.

Executive brief

The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-utility package. The affected version of d8s-htm is 0.1.0.

Affected products

  • PyPI d8s-xml

Related threats